积极预防 及时发现
快速响应 力保恢复
Offline Explorer 1.4 Service Release 2 早期版本允许远程攻击...
发布时间:2001-02-16 信息来源:

CNCVE编号:CNCVE-20010038 CVE编号:CAN-2001-0038 安全级别:中 漏洞中文描述: Offline Explorer 1.4 Service Release 2 早期版本允许远程攻击者通过把驱动器名(例如C:)列入被请求的URL中来阅读任意文件。 漏洞英文描述: Offline Explorer 1.4 before Service Release 2 allows remote attackers to read arbitrary files by specifying the drive letter (e.g. C:) in the requested URL. 漏洞参考: BID:2084 XF:offline-explorer-reveal-files BUGTRAQ:20001207 MetaProducts Offline Explorer 系统类型:其他 漏洞类型:权限有效性检查错误